Security & data handling
This page answers what careful buyers ask before they trust a vendor with shipment data. Where a control is still in progress, we say so plainly.
- Where your data lives
- Captain runs in your own cloud (AWS, Google Cloud) or on your NAS (Synology; QNAP and TrueNAS on request). Your data stays in your system, not a shared multi-tenant platform.
- Encryption
- Encrypted in transit (TLS) and at rest using current industry-standard ciphers.
- We don’t train on your data
- Your shipments, clients, and rates are never used to train shared or third-party models.
- Access & audit
- Role-based access controls, least-privilege defaults, and a full audit trail of every action Captain performs.
- A person approves client-facing steps
- Client-facing actions require your team’s approval before they execute.
- Data processing agreement
- A DPA and current subprocessor list are available to clients on request.
For security questions, our DPA, or our subprocessor list, see my contact card.